Bee-Lieve in the Metadata: Pollenating Build Attestations on Kubernetes with... - Tom Meadows
Description:
Explore a conference talk that delves into securing build systems on Kubernetes using Tetragon and eBPF. Learn how developers can protect their software development process from potential attacks by leveraging Tetragon, a Kubernetes-aware security observability tool, to create Attestagon. Discover how this innovative approach produces concise and cryptographically verifiable metadata, allowing for easy inspection of package integrity. Gain insights into the importance of securing the build process in an era where millions of software artifacts are created daily, and understand how these tools can help prevent potentially devastating attacks on widely-used projects.
Bee-Lieve in the Metadata: Pollenating Build Attestations on Kubernetes with Tetragon and EBPF